PT-2024-1937 · Zyxel · Zyxel Usg+1

Published

2024-02-28

·

Updated

2024-02-28

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Zyxel USG and Zyxel VPN (affected versions not specified)
Description The issue is related to a lack of authentication for a critical function in the firmware of Zyxel USG and Zyxel VPN devices. This could allow a remote attacker to disclose protected information.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Missing Authentication

Information Disclosure

Weakness Enumeration

Related Identifiers

BDU:2024-01729

Affected Products

Zyxel Usg
Zyxel Vpn